2007 CVE Vulnerabilities
6,580 CVEs published in 2007.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2007-4414 | — | — | 0.3% | Aug 18, 2007 | Cisco VPN Client on Windows before 4.8.02.0010 allows local users to gain privileges by enabling the "Start Before Logon... |
| CVE-2007-4415 | — | — | 0.3% | Aug 18, 2007 | Cisco VPN Client on Windows before 5.0.01.0600, and the 5.0.01.0600 InstallShield (IS) release, uses weak permissions fo... |
| CVE-2007-4417 | — | — | 1.3% | Aug 18, 2007 | IBM DB2 UDB 8 before Fixpak 15 and 9.1 before Fixpak 3 does not properly revoke privileges on methods, which allows remo... |
| CVE-2007-4418 | — | — | 1.3% | Aug 18, 2007 | IBM DB2 UDB 8 before Fixpak 15 does not properly check authorization, which allows remote authenticated users with a cer... |
| CVE-2007-4419 | — | — | 4.8% | Aug 18, 2007 | Admin.php in Olate Download (od) 3.4.1 uses an MD5 hash of the admin username, user id, and group id, to compose the OD3... |
| CVE-2007-4420 | — | — | 2.9% | Aug 18, 2007 | Absolute path traversal vulnerability in a certain ActiveX control in officeviewer.ocx 5.1.199.1 in EDraw Office Viewer ... |
| CVE-2007-4421 | — | — | 2.3% | Aug 18, 2007 | SQL injection vulnerability in Admin.php in Olate Download (od) 3.4.1 allows remote attackers to execute arbitrary SQL c... |
| CVE-2007-4422 | — | — | 2.6% | Aug 18, 2007 | The login interface in Symantec Enterprise Firewall 6.x, when a VPN with pre-shared key (PSK) authentication is enabled,... |
| CVE-2007-4423 | — | — | 3.5% | Aug 18, 2007 | Stack-based buffer overflow in the AUTH_LIST_GROUPS_FOR_AUTHID function in IBM DB2 UDB 9.1 before Fixpak 3 allows attack... |
| CVE-2007-4271 | — | — | 0.5% | Aug 18, 2007 | Directory traversal vulnerability in IBM DB2 UDB 8 before Fixpak 15 and 9.1 before Fixpak 3 allows local users to create... |
| CVE-2007-4270 | — | — | 0.3% | Aug 18, 2007 | Multiple race conditions in IBM DB2 UDB 8 before Fixpak 15 and 9.1 before Fixpak 3 allow local users to gain root privil... |
| CVE-2007-4272 | — | — | 0.3% | Aug 18, 2007 | Multiple vulnerabilities in IBM DB2 UDB 8 before Fixpak 15 and 9.1 before Fixpak 3 allow local users to create arbitrary... |
| CVE-2007-4273 | — | — | 0.4% | Aug 18, 2007 | IBM DB2 UDB 8 before Fixpak 15 and 9.1 before Fixpak 3 allows local users to create arbitrary directories and execute ar... |
| CVE-2007-4275 | — | — | 0.4% | Aug 18, 2007 | Multiple untrusted search path vulnerabilities in IBM DB2 UDB 8 before Fixpak 15 and 9.1 before Fixpak 3 allow local use... |
| CVE-2007-4276 | — | — | 0.5% | Aug 18, 2007 | Stack-based buffer overflow in IBM DB2 UDB 8 before Fixpak 15 and 9.1 before Fixpak 3 allows attackers to execute arbitr... |
| CVE-2007-4395 | — | — | 2.2% | Aug 17, 2007 | Multiple unspecified vulnerabilities in the Role Based Access Control (RBAC) functionality in Sun Solaris 8 allow remote... |
| CVE-2007-4386 | — | — | 1.0% | Aug 17, 2007 | SQL injection vulnerability in search.php in GetMyOwnArcade allows remote attackers to execute arbitrary SQL commands vi... |
| CVE-2007-4388 | — | — | 1.4% | Aug 17, 2007 | 2wire 1701HG and 2071 Gateway routers, with 5.29.51 and possibly 3.17.5 software, have a blank password by default. |
| CVE-2007-4387 | — | — | 9.2% | Aug 17, 2007 | Cross-site request forgery (CSRF) vulnerability in /xslt in 2wire 1701HG and 2071 Gateway routers, with 3.17.5 and 5.29.... |
| CVE-2007-4392 | — | — | 1.6% | Aug 17, 2007 | Winamp 5.35 allows remote attackers to cause a denial of service (program stack overflow and application crash) via an M... |
| CVE-2007-4389 | — | — | 2.1% | Aug 17, 2007 | Cross-site request forgery (CSRF) vulnerability in /xslt in 2wire 1701HG, 1800HW, and 2071 Gateway routers, with 3.17.5,... |
| CVE-2007-4390 | — | — | 1.0% | Aug 17, 2007 | The Command Line Interface (CLI), aka Adonis Administration Console, on the BlueCat Networks Adonis DNS/DHCP appliance 5... |
| CVE-2007-4391 | — | — | 9.3% | Aug 17, 2007 | Heap-based buffer overflow in Kakadu kdu_v32m.dll in Yahoo! Messenger 8.1.0.413 allows remote attackers to cause a denia... |
| CVE-2007-4393 | — | — | 0.4% | Aug 17, 2007 | The installation script for orarun on SUSE Linux before 20070810 places the oracle user into the disk group, which allow... |
| CVE-2007-4394 | — | — | 0.4% | Aug 17, 2007 | Unspecified vulnerability in a "core clean" cron job created by the findutils-locate package on SUSE Linux 10.0 and 10.1... |
Check if your code is affected by 2007 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now